Filter
AND
-Infinity
0

SUSE LinuxA Improper Link Resolution Before File Access ('Link Following') vulnerability in SUSE SUSE Linux En…

7.8
First published (updated )

SUSE Linux Enterprise Server for SAPsaphanabootstrap-formula: Escalation to root for arbitrary users in hana/ha_cluster.sls

7.8
First published (updated )

openSUSE libzypp-plugin-appdatalibzypp-plugin-appdata: potential arbitrary code execution via shell injection due to `os.system` calls

7.8
First published (updated )

openSUSE RMT Serverrmt-server-pubcloud allows to escalate from user _rmt to root

7.8
First published (updated )

SUSE Linuxpermissions: chkstat does not check for group-writable parent directories or target files in safeOpen()

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

RubyCGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affe…

7.5
First published (updated )

RubyDate.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service…

7.5
First published (updated )

arpwatcharpwatch: Local privilege escalation from runtime user to root

7.8
First published (updated )

SUSE inninn: %post calls user owned file allowing local privilege escalation to root

7.8
First published (updated )

CUPS librariescups: ownership of /var/log/cups allows the lp user to create files as root

3.3
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

openSUSE Leapopenldap uses fixed paths in /tmp

7.3
First published (updated )

redhat/grub2GRUB2 contained integer overflows when handling the initrd command, leading to a heap-based buffer overflow.

First published (updated )

redhat/grub2GRUB2 contains a race condition leading to a use-after-free vulnerability which can be triggered by redefining a function whilst the same function is already executing.

First published (updated )

redhat/grub2GRUB2: avoid loading unsigned kernels when GRUB is booted directly under secureboot without shim

First published (updated )

openSUSE LeapLocal privilege escalation from ldap to root when using OPENLDAP_CONFIG_BACKEND=ldap in openldap2

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

openSUSEosc: stores downloaded (supposed) RPM in network-controlled filesystem paths

First published (updated )

OneIdentity Syslog-ngsyslog-ng: Local privilege escalation from new to root in %post

7.8
First published (updated )

TomcatUser-writeable configuration file /usr/lib/tmpfiles.d/tomcat.conf allows for escalation of priviliges

7.8
First published (updated )

openSUSE RMT ServerMigrations requests can cause DoS on rmt

7.5
First published (updated )

TeX Liverace condition on texlive-filesystem cron job allows for the deletion of unintended files

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

TeX Liverace condition in the packaging of texlive-filesysten

First published (updated )

composer/phpmyadmin/phpmyadminSQL Injection

First published (updated )

composer/phpmyadmin/phpmyadminSQL Injection, XSS

First published (updated )

SUSE PCPpcp: Local privilege escalation from user pcp to root through migrate_tempdirs

8.4
First published (updated )

SUSE Linux Enterprise Serverwicked: Use-after-free when receiving invalid DHCP6 client options

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

SUSE Linux Enterprise Serverwicked: Use-after-free when receiving invalid DHCP6 IA_PD option

First published (updated )

SUSE Linux Enterprise Serverpermissions: chkstat sets unintended setuid/capabilities for mrsh and wodim

2.5
First published (updated )

SUSE Linux Enterprise Servermysql-systemd-helper allows setting 640 permissions of arbitrary files

First published (updated )

SUSE Linux Enterprise ServerLocal privilege escalation from user salt to root

8.4
First published (updated )

Nagios Pluginsnagios cron job allows privilege escalation from user nagios to root

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203